stb_image is a single file MIT... CVE-2023-45661

- AV AC AU C I A
发布: 2023-10-21
修订: 2023-11-04

stb_image is a single file MIT licensed library for processing images. A crafted image file may trigger out of bounds memcpy read in `stbi__gif_load_next`. This happens because two_back points to a memory address lower than the start of the buffer out. This issue may be used to leak internal memory allocation information.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息